Posts

In this purely educational post which doesn’t encourage anyone to try anything, I want to demonstrate dangers of linking phone numbers to social media accounts, because it’s bad to dox people and bad to get doxed. Unless the end justifies the means.

Libssh 0.6.0 and above have been affected by CVE-2018-10933. While mitigating this threat with patched versions that libssh team has published is easy, finding affected hosts is probably not, if you’ve not done good job at documenting your servers or if you simply don’t manage them.